diff options
author | pjd <pjd@FreeBSD.org> | 2005-09-16 11:24:28 +0000 |
---|---|---|
committer | pjd <pjd@FreeBSD.org> | 2005-09-16 11:24:28 +0000 |
commit | c71407b5890e69c4a1adc0e0936f0d7e9cd24be4 (patch) | |
tree | d2465334cbecfbd0881a19b190bef28772de14f5 /lib/libutil | |
parent | d2f7ab28daf6bc7f93eb290728f89c7d713ca0ce (diff) | |
download | FreeBSD-src-c71407b5890e69c4a1adc0e0936f0d7e9cd24be4.zip FreeBSD-src-c71407b5890e69c4a1adc0e0936f0d7e9cd24be4.tar.gz |
Pidfiles should be created with permission preventing users from opening
them for reading. When user can open file for reading, he can also
flock(2) it, which can lead to confusions.
Pointed out by: green
Diffstat (limited to 'lib/libutil')
-rw-r--r-- | lib/libutil/pidfile.3 | 2 |
1 files changed, 1 insertions, 1 deletions
diff --git a/lib/libutil/pidfile.3 b/lib/libutil/pidfile.3 index 4ae7067..81ccab1 100644 --- a/lib/libutil/pidfile.3 +++ b/lib/libutil/pidfile.3 @@ -100,7 +100,7 @@ The following example shows in which order those functions should be used. struct pidfh *pfh; pid_t otherpid, childpid; -pfh = pidfile_open("/var/run/daemon.pid", 0644, &otherpid); +pfh = pidfile_open("/var/run/daemon.pid", 0600, &otherpid); if (pfh == NULL) { if (errno == EEXIST) errx(EXIT_FAILURE, "Daemon already running, pid: %d.", otherpid); |